Loading
ZKTeco ZKBio CVSecurity 6.1.1 is vulnerable to Cross Site Scripting (XSS) via an Audio File. An authenticated user can injection malicious JavaScript code to trigger a Cross Site Scripting.
Use CWE-79, Zkteco vendor hub and Zkbio Cvsecurity product page to widen CVE-2024-35432 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2024-36526, CVE-2024-35433 and CVE-2024-35430 for nearby disclosures in the same product family.